Job Description
Tekfortune is a fast-growing consulting firm specialized in permanent, contract & project-based staffing services for world's leading organizations in a broad range of industries. In this quickly changing economic landscape, virtual recruiting and remote work are critical for the future of work. To support the active project demands and skills gaps, our staffing experts can help you find the best job for you.
Job Title: Cyber Security Engineer
Full-Time / Permanent Hire
Location: Akron, OH 44320
New order of priority - Incident response - top priority, could find a SME in IR
- Cyber Sec Policy writing in alignment in NIST 2.0 - Second priority in skillset
- CyberArk or Dilinea or other PAM systems
- Vulnerability management - Tenable is what they use; Any experience with Tenable, Rapid7, Qualys, etc.
1 st route: From an IR perspective:
- Reporting, communication, documentation standpoint.
- Traceroute would be nice to have.
2 nd : Policy
- NIST CSF
- Gap analysis with NIST - Being able to lead a gap analysis of 30 year old policy's.
Original skillset buckets - CyberArk or Dilinea or other PAM systems
- Vulnerability management - Tenable is what they use
- ny experience with Tenable, Rapid7, Qualys, etc.
- Incident response
- Cyber Sec Policy writing in alignment in NIST and other governance standards
Interview Process: - Interview panel: 90 minutes via MS Teams, broken up into 3 parts
- 2 parts technical sections based on JD and relative experience
- 1 part STAR Behavioral Interview Model
Ideal Candidate Profile - Strong background as a systems engineer, systems administrator, or infrastructure engineer.
- t least 2 years of direct cyber security experience for all job levels.
- t least 5 years of practical cyber security experience is strongly preferred for senior-level candidates.
- Hands-on vulnerability remediation experience in enterprise environments.
- ble to interpret scan results and translate them into actionable remediation steps for technical teams.
- Comfortable working with Windows or Linux environments.
- Can engage deeply with system engineers, network engineers, and business units on how to bring systems into a secure state.
- Experience with Tenable or Nessus is highly desirable.
- zure experience is a plus.
- VMware is a relevant skill for the role.
Must Have - professionals who can take vulnerability findings and work with engineering teams to remediate them.
- Bringing in one level 4 resource to alleviate the gaps in their Cyber pillars below:
- (ideally all 4 but at least 2-3 is required)
- Incident management
- Vulnerability management
- PAM, Privileged Access Management
- Cyber Sec Policies
Do NOT Want - Do not focus on SOC analysts.
- Do not focus on recent graduates.
- Do not focus on candidates whose background is primarily government information assurance, IAO, IAM, ISM, or similar compliance/policy work.
- Do not focus on auditors or compliance professionals.
- NERC CIP experience is not required.
- They are not looking for policy-heavy, audit-heavy, or entry-level cyber profiles.
Screening Questions - What is your IT cyber security experience?
- What is your vulnerability remediation security experience? Please explain in depth.
- Have you taken a report that shows known vulnerabilities and remediated those vulnerabilities?
- re you hands-on from a threat hunting standpoint, or are you more focused on building cyber policy?
- What is your Privileged Access Management experience
- What is your experience with system administration or server administration?
- What is your networking engineering experience?
Notes - The team wants a senior cyber security practitioner with at least 5 years of practical cyber security experience in a real enterprise environment.
- candidate with a long tenure in systems administration who has more recently moved into a technical cyber security role may also be a fit.
- The role is centered on technical IT vulnerability remediation rather than SOC operations.
- The person must be able to speak credibly with IT and business units about what systems need to be secured and how.
- The goal is to bring platforms into a secure state through practical remediation guidance.
- Tenable and Nessus experience would be valuable, especially if the candidate can translate scans into remediation actions for different technical teams.
For more information and other jobs available please contact our recruitment team at careers@tekfortune.com . To view all the jobs available in the USA and Asia please visit our website at .
Job Tags
Permanent employment, Full time, Contract work, Remote work